logo

Secure Boot useless on hundreds of PCs from major vendors after key leak

ID: 38cf9ce5-31c3-5058-8a13-9ca4a1c180dc

STIX ID: report--38cf9ce5-31c3-5058-8a13-9ca4a1c180dc

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2024-07-29

Date Updated: 2026-04-26

Author: Brandon Vigliarolo

...
...

This briefing highlights several recent security issues: Binarily disclosed a long-running UEFI Secure Boot supply-chain weakness (PKFail) allowing firmware-level Secure Boot bypass on devices from multiple major vendors; NIST notes ongoing exploitation of a 2012 Internet Explorer use-after-free; SpyTech suffered a breach exposing files from over 10,000 monitored devices; Cisco Talos reports a rise in ransomware largely tied to lack of MFA; and TracFone was fined $16M for API-related breaches that led to customer data theft and unauthorized port-outs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.